Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Incident Manager

$89.5k

Koniag Government Services

Koniag IT Systems, LLC a Koniag Government Services company, is seeking an Incident Manager to support KITS and our government customer Washington, DC. The position is hybrid, requires 3 days onsite. This position requires the candidate to be able to obtain a Public Trust.

We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more.

Koniag IT Systems, a Koniag Government Services company, is seeking an experienced Incident Manager to support a comprehensive enterprise IT operations and support engagement for a federal customer. This role serves as the primary owner of the enterprise incident management lifecycle, ensuring rapid detection, triage, escalation, resolution, and post-incident review of IT incidents across a geographically distributed, 24x7 hybrid on-premises and cloud environment spanning AWS commercial and GovCloud, Microsoft 365, Azure Government, and enterprise network and application platforms.

The Incident Manager operates within a mature ITIL 4-aligned IT Service Management (ITSM) practice and works in close coordination with the enterprise NOC, multi-tier Service Desk, network engineering, infrastructure, and platform operations teams to ensure that all incidents are managed to resolution within established service level objectives. This individual plays a central role in driving service restoration, minimizing business impact, and contributing to the program's continual service improvement objectives through trend analysis, problem identification, and post-incident learning activities.

The ideal candidate is a detail-oriented and operationally experienced ITSM professional with a strong background in enterprise incident management, ITIL-based service management practices, and federal IT operations environments. This individual must thrive in a fast-paced, high-accountability 24x7 operational setting and possess the ability to coordinate effectively across diverse technical teams and Government stakeholders under time-critical conditions.

This position requires the ability to obtain and maintain an SBA background investigation, HSPD-12 PIV credentials, and applicable IT access authorizations prior to performing work. This position may be primarily performed at SBA Headquarters and/or approved remote/telework locations.

The Incident Manager is responsible for owning and managing the end-to-end enterprise incident management lifecycle in accordance with ITIL 4 best practices and SBA OCIO service management requirements. This individual ensures that all incidents-from Tier 1 Service Desk tickets through Priority 1 critical enterprise outages-are accurately classified, prioritized, assigned, escalated, and resolved within established service level agreements (SLAs). The Incident Manager serves as the central coordination hub during major incidents, driving technical bridge calls, managing stakeholder communications, and ensuring timely service restoration. This role also contributes to problem management, change management support, knowledge management, and continual service improvement activities.

Principal responsibilities will include but are not limited to:

Incident Lifecycle Management:

  • Own and manage the full enterprise incident management lifecycle from initial detection and logging through triage, categorization, prioritization, assignment, escalation, resolution, and formal closure in the Government's ITSM platform.

  • Ensure all incidents are accurately classified by priority (P1-P4) in accordance with established impact and urgency criteria, and that appropriate response and resolution timelines are applied and monitored in real time.

  • Monitor the active incident queue continuously, identifying aging incidents, escalation triggers, SLA breach risks, and stalled assignments, and taking proactive action to ensure forward progress on all open incidents.

  • Coordinate and drive the timely assignment of incidents to the appropriate Tier 1, Tier 2, Tier 3, or Tier 4 technical resources based on incident category, complexity, and required expertise.

  • Ensure incidents are escalated promptly and appropriately-both functionally across technical teams and hierarchically to program leadership and Government stakeholders-when SLA thresholds, scope, or business impact warrant escalation.

  • Maintain accurate, complete, and timely incident records in the ITSM platform throughout the incident lifecycle, ensuring all actions, decisions, workarounds, and resolutions are thoroughly documented.

Major Incident Management:

  • Serve as the primary coordinator and decision-maker for all Priority 1 (P1) and Priority 2 (P2) major incidents, activating and leading technical bridge calls, war rooms, and cross-functional response teams to drive rapid service restoration.

  • Ensure P1 critical incidents are acknowledged within 15 minutes and that service restoration is achieved within 4 hours in accordance with program service level objectives, meeting the Government's target of at least 90% of P1 incidents restored within the 4-hour SLA.

  • Maintain clear, accurate, and timely stakeholder communications throughout major incident events, including initial notifications, status updates at defined intervals, and formal incident closure notifications to the COR and Government stakeholders.

  • Coordinate with the NOC, Service Desk Manager, technical leads, and program leadership to ensure all required resources are engaged, barriers to resolution are removed, and escalation paths are followed during major incidents.

  • Lead or facilitate formal post-incident reviews (PIRs) for all P1 and significant P2 incidents, ensuring root cause analysis findings, contributing factors, corrective actions, and lessons learned are thoroughly documented and tracked to completion.

Problem Management Coordination:

  • Collaborate with the Problem Manager or Service Management Lead to ensure incidents exhibiting patterns of recurrence or systemic root causes are formally transitioned into the problem management process.

  • Contribute incident trend data, recurring issue patterns, and workaround documentation to support problem record creation, root cause investigation, and known error documentation.

  • Track and monitor the implementation of permanent fixes and corrective actions arising from problem management activities, ensuring incident recurrence rates are measurably reduced over time.

Change Management Support:

  • Coordinate with the change management process to identify incidents resulting from unauthorized changes or failed changes, ensuring accurate linkage between incident records and associated change records in the ITSM platform.

  • Participate in Change Advisory Board (CAB) activities as needed, providing incident trend data and operational risk inputs to support change impact assessment and scheduling decisions.

ITSM Platform Administration & Reporting:

  • Administer and maintain incident management workflows, categorization schemas, assignment group structures, escalation rules, and SLA configurations within the Government's ITSM platform (ServiceNow or equivalent) to ensure accurate and efficient incident processing.

  • Develop, maintain, and deliver recurring incident management performance reports and dashboards, including metrics on incident volumes, SLA compliance rates, mean time to acknowledge (MTTA), mean time to resolve (MTTR), first-contact resolution rates, escalation rates, and incident trends by category and priority.

  • Contribute incident management metrics and performance data to Sprint Review Reports, Monthly Status and Performance Reports, and the service-level/ITSM metrics dashboard submitted to the Government by the 5th business day of each month.

  • Analyze incident data to identify trends, high-volume categories, recurring issues, and improvement opportunities, providing actionable recommendations to program leadership and the Service Management Lead.

Knowledge Management:

  • Oversee the development, review, and maintenance of incident-related knowledge base articles, resolution guides, troubleshooting procedures, and known error workarounds in the Government's ITSM knowledge management system.

  • Ensure Tier 1 and Tier 2 Service Desk personnel have access to current, accurate, and actionable knowledge base content to support first-contact resolution objectives, targeting at least 70% of eligible tickets resolved at Tier 1.

  • Promote a knowledge-sharing culture across the NOC and Service Desk, ensuring resolution documentation is captured at ticket closure and that institutional knowledge is preserved throughout personnel transitions.

Agile Delivery Integration:

  • Participate in Sprint ceremonies as required, including Sprint Planning, backlog refinement, and Sprint Retrospectives, contributing incident management workstream priorities, improvement backlog items, and operational performance data to the Sprint cadence.

  • Maintain and manage incident management-related backlog items in the Government's Agile/ITSM tooling, ensuring items are accurately prioritized, estimated, and tracked to completion each Sprint.

  • Identify and propose process improvement opportunities for inclusion in the program backlog, driving measurable enhancements to incident management efficiency, SLA performance, and customer satisfaction.

Security & Compliance:

  • Ensure all incident management activities comply with applicable Federal security, privacy, and compliance requirements, including FISMA, NIST SP 800-53, SBA IT and cybersecurity policies, and CUI safeguarding requirements.

  • Ensure suspected or confirmed security incidents are promptly identified, escalated, and reported in accordance with SBA incident response procedures and applicable Federal reporting requirements.

  • Support the application of least-privilege, separation-of-duties, and Zero Trust principles within incident management workflows and access control practices.

Education and Experience:

Required:

  • Bachelor's degree in Information Technology, Computer Science, Information Systems, Business Administration, or a related field from an accredited college or university. Equivalent work experience may be considered in lieu of a degree.

  • Minimum of 5 years of experience in IT service management, with at least 3 years of dedicated experience in an Incident Manager, Major Incident Manager, or equivalent ITSM leadership role in an enterprise federal IT environment.

  • Demonstrated experience managing the full incident lifecycle-including P1 major incident coordination-in a 24x7 enterprise IT operations environment of comparable scale and complexity.

  • Demonstrated experience with ITIL-based ITSM practices, including incident management, problem management, change management, and knowledge management.

  • Hands-on experience administering and managing incidents within an enterprise ITSM platform, preferably ServiceNow.

  • Ability to obtain and maintain an SBA background investigation, HSPD-12 PIV credentials, and all required IT access authorizations prior to performing work requiring such access.

Preferred:

  • Prior experience supporting federal civilian agency IT operations programs.

  • Experience supporting incident management within hybrid on-premises and cloud environments, including AWS and Microsoft Azure/365.

  • Experience working within an Agile IT operations delivery model, integrating ITSM processes with Sprint-based planning and prioritization.

Required Skills and Competencies:

  • Exceptional communication skills in English-both written and oral-with the demonstrated ability to communicate clearly and concisely under time-critical conditions to diverse audiences including technical teams, program leadership, and senior Government stakeholders.

  • Proven ability to lead and coordinate cross-functional technical teams during high-pressure major incident events, driving rapid diagnosis and service restoration without direct authority over all participants.

  • Deep knowledge of ITIL 4 incident management principles and practices, including incident classification, prioritization, escalation, SLA management, major incident management, and post-incident review processes.

  • Hands-on proficiency with enterprise ITSM platforms, particularly ServiceNow, including incident workflow configuration, queue management, SLA monitoring, escalation rule management, and reporting.

  • Strong analytical skills with the ability to identify incident trends, recurring patterns, and systemic issues from ITSM data and translate findings into actionable improvement recommendations.

  • Experience developing and maintaining incident management performance dashboards and metrics reports, including MTTA, MTTR, SLA compliance rates, first-contact resolution rates, and incident volume trends.

  • Demonstrated ability to develop and maintain a high-quality knowledge base, ensuring Tier 1 and Tier 2 Service Desk personnel have access to current, accurate resolution guidance.

  • Strong understanding of enterprise IT infrastructure components relevant to incident management, including network, server, cloud (AWS/Azure), Microsoft 365, and enterprise application platforms.

  • Familiarity with federal IT security and compliance requirements, including FISMA, NIST SP 800-53, Zero Trust Architecture principles, and CUI safeguarding requirements.

  • Strong organizational skills with the ability to simultaneously manage multiple open incidents at varying priority levels, maintaining accurate records and ensuring no incident falls through the cracks.

  • Proficiency with Microsoft Office Suite, Microsoft Teams, and enterprise collaboration tools.

Desired Skills and Competencies:

  • ITIL 4 Foundation certification or higher (e.g., ITIL 4 Specialist: High Velocity IT, ITIL 4 Managing Professional).

  • ServiceNow Certified System Administrator (CSA) or ServiceNow Certified Implementation Specialist (CIS) - IT Service Management.

  • Experience managing incidents within AWS commercial and/or GovCloud environments, including familiarity with AWS monitoring, alerting, and event management tooling.

  • Experience managing Microsoft 365 and Azure Government-related incidents, including Exchange Online, Microsoft Teams, SharePoint Online, and Microsoft Entra identity incidents.

  • Familiarity with enterprise network incident management, including LAN/WAN, SD-WAN, routing, switching, wireless, and network security fabric incidents.

  • Experience with enterprise monitoring and event management platforms (e.g., SolarWinds, Splunk, Dynatrace, or equivalent) as they relate to automated incident detection and correlation.

  • Knowledge of problem management and root cause analysis methodologies, including Fishbone/Ishikawa analysis, 5 Whys, and Kepner-Tregoe problem analysis.

  • Familiarity with Agile delivery methodologies and experience participating in Sprint ceremonies within an IT operations context.

  • Experience supporting post-incident review (PIR) facilitation and corrective action tracking programs in a federal IT environment.

  • CompTIA Security+, CISSP, or equivalent cybersecurity certification demonstrating knowledge appropriate to managing incidents involving Federal IT systems and sensitive data.

  • Experience with HSPD-12/PIV credentialing processes and federal identity and access management platforms, including Okta and Microsoft Entra.

  • Familiarity with Section 508 compliance requirements as they apply to ITSM reporting tools and knowledge management platforms.

  • Experience contributing to continual service improvement programs within an ITIL-aligned, Agile IT operations environment.

Our Equal Employment Opportunity Policy

The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristic protected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment.

The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website, please get in touch with Heaven Wood via e-mail at View email address on click.appcast.io or by calling View phone number on click.appcast.io to request accommodations.

Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit

Equal Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352

Job Details

Job Family IT, Cyber Security, Network Systems

Pay Type Salary

Hiring Min Rate 89,500 USD

Hiring Max Rate 119,500 USD

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Incident Manager in Washington DC vacancy
  •  ...security goals from product vision, coordinating with security engineers, IT, legal, and customer-facing teams, and ensuring timely incident response and post-incident improvements. A strong track record in enterprise software security is essential. #J-18808-Ljbffr... 
    Suggested

    Segment (Twilio)

    Washington DC
    5 days ago
  • The Night Shift Incident Manager is responsible for leading, coordinating, and overseeing the response to IT incidents that impact the NIH infrastructure, services, and users. This role acts as the central point of authority during incidents, ensuring rapid restoration... 
    Suggested
    Local area
    Remote work
    Flexible hours
    Shift work
    Night shift
    Weekend work
    Day shift

    Cwsc

    Bethesda, MD
    5 days ago
  • Anthropic is seeking an experienced Technical Program Manager to own and evolve incident management within the Detection & Response (D&R) team. You’ll drive the end-to-end incident lifecycle—from detection and triage through containment, remediation, and post-incident... 
    Suggested

    Anthropic

    Washington DC
    6 days ago
  • ACS is seeking a Manager, Protective Services to lead our Washington, DC security team. You will oversee contract guards, supervisors,...  ...control, CCTV and alarms, and coordinate emergency responses as incident commander. In this role you will support executive protection,... 
    Suggested
    Contract work

    ACS

    Washington DC
    4 days ago
  • $142.9k - $266k

    Digital Forensics and Incident Response, Senior ManagerThe Opportunity:Serve as a member of the Digital Forensics and Incident Response...  ...and senior personnel, including responsibility for career management, employee development, performance management, and disciplinary... 
    Suggested
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Washington DC
    4 days ago
  • SHR Consulting Group, LLC is seeking an Operations Manager to lead daily operations across the DISA J-9 HAC portfolio. This is a Key Personnel position centered on incident response, monitoring, and coordinated execution with the On-Site Program Manager and Government leadership... 
    Full time

    SHR CONSULTING GROUP, LLC

    Arlington, VA
    2 days ago
  • $127.1k - $172k

     ...fairness, and trust.The DSTPA team is seeking a Technical Program Manager with privacy, data protection, risk management expertise, and...  ..., and high-judgment decision-making from event intake through incident containment or risk mitigation. You will work with builder, engineering... 
    Flexible hours
    Shift work

    Amazon

    Arlington, VA
    5 days ago
  •  ...initiatives. You will partner with CISO/ISRM leadership, translating complex regulations into actionable business guidance and directing incident response and regulatory matters. You will oversee contract negotiations related to security, governance, and technology, while... 
    Contract work

    Jobleads-US

    Washington DC
    2 days ago
  •  ...site. in Alexandria, VA   Our client seeks a seasoned leader to direct enterprise cybersecurity incident response and offensive security initiatives. The role will manage CSIRT operations across infrastructure, applications, systems, and cloud, maintain and test... 
    Hourly pay
    Permanent employment
    Full time
    Contract work
    Temporary work
    Local area
    2 days per week
    3 days per week

    Eliassen Group

    Alexandria, VA
    2 days ago
  • $62.2k - $105.7k

     ...Position Overview The Incident Manager oversees the end‑to‑end lifecycle of IT incidents in an enterprise environment, ensuring rapid restoration of normal service with minimal disruption to mission‑critical systems. The role coordinates cross‑functional technical... 
    Contract work
    Work experience placement
    Work at office

    ASM Research, An Accenture Federal Services Company

    Washington DC
    1 day ago
  •  ...Computer World Services in Bethesda, MD, seeks a Night Shift Incident Manager to lead IT incident responses that impact NIH infrastructure, services, and users. You will act as the central authority for incident decisions, drive rapid restoration, and align TOC, network... 
    Night shift

    Cwsc

    Bethesda, MD
    4 days ago
  • $150k - $160k

     ...Job Description: We are seeking a highly skilled and experienced Incident and Release Manager, who will be responsible for the Incident, Problem, and Release processes within the program. For Incident and Problem Management this would include Incident Triage methodologies... 
    Remote work
    Work from home
    Flexible hours
    3 days per week

    JCD Staffing

    Washington DC
    5 days ago
  •  ...Title: Incident Manager III Description: Solutions³ LLC is supporting our prime contractor and their U.S. Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, providing... 
    For contractors
    Immediate start

    Ellenco Estágios e Treinamentos

    Arlington, VA
    3 days ago
  • $3,500 per month

     ...opportunities to grow and the ability to have an impact on every client you work with. ARSIEM is looking for a Cyber Incident Manager to support on-site incident response to civilian Government agencies and critical asset owners who experience cyber attacks,... 
    Immediate start
    Shift work

    ARSIEM Corporation

    Arlington, VA
    6 days ago
  • $131.3k - $177.6k

     ...At AWS Enterprise Support we’re looking for a Technical Account Manager (TAM) to support our customers’ creative and transformative...  ...environment, and drive discussions with senior leadership regarding incidents, trade-offs, support and risk management.You will provide... 
    Work experience placement
    Flexible hours

    AmazonWebServices

    Arlington, VA
    3 days ago
  •  ...Job Description Job Description Incident Manager Location: Arlington, VA Must have an active Top Secret Security Clearance Node.Digital is supporting a customer by delivering intelligence support to customer through proactively identifying, analyzing, and... 

    Node.Digital

    Arlington, VA
    7 days ago
  •  ...Job Description Job Description Title: Incident Manager II Description:   Solutions³ LLC is supporting a U.S. Government customer to support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks,... 
    Immediate start
    Shift work

    Solutions³ LLC

    Arlington, VA
    7 days ago
  • $3,500 per month

     ...every client you work with.  ARSIEM is looking for a Cyber Case Manager . This position will support one of our Government clients in...  ...to enable mitigation of potential Computer Network Defense incidents within the enterprise  Applying knowledge of the tactics, techniques... 
    Shift work

    ARSIEM

    Arlington, VA
    7 days ago
  • $3,500 per month

     ...Officer . This position will support one of our Government clients in Arlington, VA. Responsibilities Supporting the management of cyber incidents through the incident response lifecycle. Creating and maintaining routine reporting of cyber incidents in official... 

    ARSIEM

    Arlington, VA
    7 days ago
  • $207k - $285k

     ...applied engineering, legal, policy, and product. Technical Program Managers (TPMs) play a critical leadership role in aligning teams and...  ...including vulnerability management, evidence collection, incident response coordination, supply chain risk management, and device... 
    Work at office
    Local area
    Flexible hours

    OpenAI

    Washington DC
    3 days ago
  •  ...Job Description Job Description Title: Incident Manager III Description:   Solutions³ LLC is supporting a customer by delivering intelligence support to customer through proactively identifying, analyzing, and responding to cyber threats to inform the customer... 

    Solutions³ LLC

    Arlington, VA
    5 days ago
  • $290k - $365k

     ...in protecting our systems, users, and data from security threats. We’re looking for an experienced Technical Program Manager to own and evolve incident management within D&R. This is a senior-level specialization on the Technical Program Manager ladder, focused on how... 
    Work at office
    Immediate start
    Visa sponsorship
    Flexible hours
    Shift work

    Anthropic

    Washington DC
    6 days ago
  • $120k - $145k

    Overview Edgewater Federal Solutions is currently seeking a Incident Response (IR) Manager to provide IR leadership, management, and support to an Incident Response team comprised of IR Tier-1, IR Tier-2, and Forensics specialists on a Federal government contract. This... 
    Contract work
    Shift work

    Edgewater Federal Solutions

    Bethesda, MD
    2 days ago
  • $310k - $375k

     ...Safeguards team is responsible for enforcing our policies, protecting users, and ensuring our platform is not misused. As the Incident Response Manager, you'll own the operational backbone of how Safeguards responds when things need attention fast. You'll run our on-call... 
    Visa sponsorship
    Weekend work

    aijoblist

    Washington DC
    2 days ago
  • $153.6k - $207.8k

     ...AWS Training and Certification, optimize with AWS Support and Managed Services, and meet objectives with AWS Security Assurance Services...  ..., and drive discussions with senior leadership regarding incidents, trade-offs, support and risk management. You will provide advocacy... 
    Flexible hours

    AmazonWebServices

    Arlington, VA
    4 days ago
  • $131k - $218.3k

     ...heart-of-the-business solutions. Work you'll do: As a Project Manager on the operations and sustainment team, you will be responsible...  ...sustainment activities for enterprise mission systemsCoordinate incident response, troubleshooting, user support, and issue resolution across... 
    Local area

    Deloitte

    Rosslyn, VA
    2 days ago
  • $165 per hour

    Job DescriptionPOSITION SUMMARYThe Contract Manager is responsible for the overall management, direction, and performance of security...  ...Conduct prompt, thorough, and objective investigations of reported incidents, complaints, or allegations.Manage day-to-day security... 
    Contract work
    Work at office
    Flexible hours
    Weekend work

    Constellis

    Washington DC
    3 days ago
  •  ...production operations, service delivery, operational governance, and managed service provider oversight for Marriott's Identity Governance...  ...to govern operational support activities, vendor performance, incident management, operational readiness, and production sustainment.... 
    Full time
    Temporary work
    For contractors
    Remote work
    Flexible hours

    Marriott International

    Bethesda, MD
    3 days ago
  •  ...Traveling Project Manager- Self Perform (AFG) Location: Kansas City, MO, US, 64106Myrtle Beach, SC, US, 29577Clarksville, TN, USEl...  ...individual actions and mentoring others. Investigates safety incidents and retrains staff as needed. Manages the JE Dunn prestart process... 
    Contract work
    For subcontractor
    Relocation

    JE Dunn Construction

    Washington DC
    1 day ago
  •  ...is responsible for providing operational excellence, financial management, team leadership and relationship management with all...  ...individual actions and mentoring others. Investigates safety incidents and retrains staff as needed and implements corrective action.... 
    For subcontractor
    Night shift

    JE Dunn Construction

    Washington DC
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Incident Manager. Be the first to apply!